nero2014 platinum patch.exe

The application nero2014 platinum patch.exe has been detected as a potentially unwanted program by 26 anti-malware scanners. This is a setup program which is used to install the application. Additionally, the file is typically installed by a number of programs including Nero 2014 Content Pack by Nero AG and Nero 2015 by Nero AG. The file has been seen being downloaded from dc479.4shared.com and multiple other hosts.
MD5:
787e3bc6e80e8402cf99aa0b11cb188c

SHA-1:
7d4887117e5faec4fdea1410dbe924027f532352

SHA-256:
2d38fe91e3b464fe965425310bb9702046d3eb1ba90e2c800a51c958677e0880

Scanner detections:
26 / 68

Status:
Potentially unwanted

Analysis date:
4/25/2024 8:08:25 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.10063873
1091

Agnitum Outpost
Riskware.HackTool
7.1.1

AhnLab V3 Security
Packed/Win32.Morphine
2014.02.09

avast!
Win32:Patcher-AK [PUP]
2014.9-140208

AVG
Crack
2015.0.3569

Bitdefender
Trojan.Generic.10063873
1.0.20.195

Bkav FE
W32.Clod8dc.Trojan
1.3.0.4924

Comodo Security
TrojWare.Win32.Agent.WFN
17752

Emsisoft Anti-Malware
Trojan.Generic.10063873
8.14.02.08.05

ESET NOD32
Win32/HackTool.Patcher.AD (variant)
8.9397

Fortinet FortiGate
Riskware/GamePatcher
2/8/2014

F-Secure
Trojan.Generic.10063873
11.2014-08-02_7

G Data
Trojan.Generic.10063873
14.2.24

IKARUS anti.virus
not-a-virus:RiskTool.Win32.Patcher
t3scan.2.2.29

K7 AntiVirus
Hacktool
13.175.11103

Malwarebytes
PUP.Riskware.Patcher
v2014.02.08.05

McAfee
RDN/Generic PUP.z!dh
5600.7225

MicroWorld eScan
Trojan.Generic.10063873
15.0.0.117

Norman
Suspicious_Gen.WV
11.20140208

nProtect
Trojan.Generic.10063873
14.02.07.03

Panda Antivirus
PUP/MultiToolbar.A
14.02.08.05

Rising Antivirus
PE:Malware.XPACK/RDM!5.1
23.00.65.14206

Sophos
Troj/Agent-WFN
4.97

Trend Micro House Call
TROJ_SPNR.0BJ213
7.2.39

Trend Micro
TROJ_SPNR.0BJ213
10.465.08

VIPRE Antivirus
Trojan.Win32.Agent.wfn
26266

File size:
45 KB (46,080 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\nero2014 platinum patch.exe

File PE Metadata
Compilation timestamp:
12/22/2012 4:59:46 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
768:QVNQIyRZsd+ozULIy4I+06aSjwdr8G8cu/d/E+mbMbrRWuj0fiT/9dTf:JIyGzby4nRMt8td//meRWK0ar9xf

Entry address:
0x102B

Entry point:
E8, 07, 00, 00, 00, 6A, 00, E8, 05, 01, 00, 00, 55, 8B, EC, 81, C4, F4, FB, FF, FF, 56, 57, 53, 6A, 00, E8, 04, 01, 00, 00, A3, 30, 30, 40, 00, C7, 45, F8, 00, 00, 00, 00, 6A, 0A, 68, 00, 30, 40, 00, 6A, 00, E8, DE, 00, 00, 00, 0B, C0, 74, 21, 89, 45, FC, FF, 75, FC, 6A, 00, E8, FD, 00, 00, 00, 89, 45, F4, FF, 75, FC, 6A, 00, E8, E4, 00, 00, 00, 0B, C0, 74, 03, 89, 45, F8, 83, 7D, F8, 00, 74, 32, 6A, 04, 68, 00, 10, 00, 00, FF, 75, F4, 6A, 00, E8, D8, 00, 00, 00, 8B, F8, FF, 75, F4, FF, 75, F8, 57, E8, BE...
 
[+]

Entropy:
7.7970  (probably packed)

Code size:
512 Bytes (512 bytes)

The file nero2014 platinum patch.exe has been discovered within the following programs.

www.nero.com
About 5% of users remove it
Nero 2015  by Nero AG
About 1% of users remove it
 
Powered by Should I Remove It?

The file nero2014 platinum patch.exe has been seen being distributed by the following 3 URLs.

http://dc479.4shared.com/download/.../nero14platinumv15002200_patch.exe

Remove nero2014 platinum patch.exe - Powered by Reason Core Security